Skip to content

Open nowPosted 17 days ago

DevSecOps Engineer – Remote Work Type

directio44 open roles

Where
Warsaw, Poland
Work mode
Remote
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowDevSecOps Engineer – Remote Work Typedirectio · Warsaw, Poland
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on directio's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.4% of postings close within 7 days. Measured by our own scanner across the market.

Share of postings closed within
  1. 1.5%1 day
  2. 3.5%3 days
  3. 7.4%7 days
  4. 13.2%14 days
  5. 34.6%30 days
This job: posted 17 days ago

The posting

Directio is a global IT services company. We consult, code, test, deploy, and manage mainly cloud-based and mobile applications, providing around-the-clock support from our offices in Poland, the Philippines, Mexico, and the USA. We prepare our FMCG, retail, automotive, and SaaS clients for the future by accelerating their digital transformation. Operating under the “We Code Success” principle, we prioritize the success of our clients, consultants, and partners.

About project

We are looking for a DevSecOps Engineer to join a project for our client, an international company operating across multiple markets.

You will be joining a small platform team responsible for Azure, Kubernetes, deployments, Microsoft 365, and on-call support. This is a hands-on role combining platform engineering and DevOps responsibilities with ownership of security engineering practices.

You will be supporting our client’s migration from a monolithic architecture to services, building the required infrastructure, environments, CI/CD pipelines, and observability while ensuring the stability of the existing platform.

At the same time, you will be responsible for strengthening security practices across the organization and supporting the technical side of the ISO 27001 certification journey.

Responsibilities

  • You will be running and maintaining the platform together with the team, working with Azure, AKS, deployments, upgrades, incident response, and on-call support;
  • You will be building and operating infrastructure required for the migration from a monolithic architecture to services, including environments, CI/CD pipelines in Azure DevOps, Infrastructure as Code, monitoring, and alerting;
  • You will be managing the external attack surface, maintaining an inventory of internet-facing assets, monitoring potential exposures, and ensuring vulnerabilities are addressed effectively;
  • You will be integrating security into Azure DevOps and Kubernetes delivery pipelines, including code, dependency, secrets, container, and Infrastructure as Code scanning;
  • You will be establishing and maintaining the Azure and Microsoft 365 security baseline, including identity and access management, MFA, cloud security posture, Microsoft Defender, and access management processes;
  • You will be managing the vulnerability management process end-to-end, from identifying vulnerabilities and coordinating fixes to verifying their resolution and maintaining appropriate evidence;
  • You will be responsible for the technical security controls supporting the ISO 27001 certification programme, working closely with the compliance lead;
  • You will be providing technical input for customer security questionnaires and audits and participating in discussions with customers and auditors when deeper technical expertise is required;
  • You will be supporting penetration testing activities performed by an external partner, including defining the scope, coordinating testing activities, and ensuring identified findings are properly addressed;
  • You will be automating operational and security processes wherever possible and continuously improving the reliability and security of the platform.

Requirements

  • You have 5+ years of professional experience in Platform Engineering, DevOps, or a similar role;
  • You have strong hands-on experience with Microsoft Azure and Kubernetes/AKS in production environments, including building clusters, pipelines, and environments, performing upgrades, and supporting production systems;
  • You have hands-on experience in security engineering and have taken ownership of security-related processes rather than only supporting them;
  • You have experience with the technical side of ISO 27001 or an equivalent security framework, or you have managed vulnerability management processes end-to-end;
  • You have practical knowledge of security tooling and practices, including external attack surface monitoring, DAST, SAST, SCA, secrets scanning, container scanning, and cloud security posture management;
  • You have experience with Azure DevOps and CI/CD pipelines;
  • You have experience with Infrastructure as Code and infrastructure automation;
  • You have scripting and automation skills using Bash, PowerShell, or Python;
  • You are comfortable documenting technical processes and security controls and communicating technical topics clearly to customers, security teams, and auditors;
  • You are able to independently prioritize tasks and take ownership in a small, senior team environment;
  • You are fluent in English.

Nice to have

  • Knowledge of Estonian or German;
  • Previous experience working with enterprise or banking customers and supporting customer security audits;
  • Experience supporting organizations through security certification programmes;
  • Experience working on modernization projects involving migration from monolithic architectures to services.

We offer

  • Salary: 25 000 - 33 000 PLN netto / B2B;
  • Private healthcare, Multisport card and trainings.
From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against directio's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on directio's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    directio's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.